我用自耕农的样板代码(generator-gulp-angular创建了一个Angular项目)
现在在我的控制器中,我试图像这样发出一个http请求:
$http.get('http://food2fork.com/api/search?key='+key+'&page=1').then(function(response) {
vm.all = response.data;
});
但我一直收到这个错误:
阻止跨源请求:同源策略禁止在http://food2fork读取远程资源...(原因:CORS标题'访问控制 - 允许 - 来源'缺失)
我做了我的研究,发现我需要将此访问控制添加到我的服务器,
使用中间件属性,我做了,但我仍然在这里得到一个错误是我的server.js
文件
var path = require('path');
var gulp = require('gulp');
var conf = require('./conf');
var cors = require('cors');
var browserSync = require('browser-sync');
var browserSyncSpa = require('browser-sync-spa');
var util = require('util');
var proxyMiddleware = require('http-proxy-middleware');
function browserSyncInit(baseDir, browser) {
browser = browser === undefined ? 'default' : browser;
var routes = null;
if(baseDir === conf.paths.src || (util.isArray(baseDir) && baseDir.indexOf(conf.paths.src) !== -1)) {
routes = {
'/bower_components': 'bower_components'
};
}
//here is where I added the middleware
var server = {
baseDir: baseDir,
middleware: function (req, res, next) {
res.setHeader('Access-Control-Allow-Origin', '*');
next();
},
routes: routes
};
browserSync.instance = browserSync.init({
startPath: '/',
server: server,
browser: browser
});
}
browserSync.use(browserSyncSpa({
selector: '[ng-app]'// Only needed for angular apps
}));
gulp.task('serve', ['watch'], function () {
browserSyncInit([path.join(conf.paths.tmp, '/serve'), conf.paths.src]);
});
gulp.task('serve:dist', ['build'], function () {
browserSyncInit(conf.paths.dist);
});
gulp.task('serve:e2e', ['inject'], function () {
browserSyncInit([conf.paths.tmp + '/serve', conf.paths.src], []);
});
gulp.task('serve:e2e-dist', ['build'], function () {
browserSyncInit(conf.paths.dist, []);
});
`
但是错误仍然存在,有任何帮助吗?
答案 0 :(得分:1)
您需要http-proxy-middleware但不使用它! 如果要为包含/ api的所有URL解析Cross Origin,请先进行 您应该将Angular请求转发到BrowserSync服务器
所以
$http.get('http://food2fork.com/api/search?key='+key+'&page=1')
应该成为
$http.get('/api/search?key='+key+'&page=1')
BrowserSync将接收呼叫
在浏览器中使用
中继对后面真实服务器的调用target :'http://food2fork.com/'
并在回复
时添加Cross Origin标头changeOrigin: true,
完整配置变为:
var proxyMiddleware = require('http-proxy-middleware');
const jsonPlaceholderProxy = proxyMiddleware('/api', {
target: 'http://food2fork.com/api',
changeOrigin: true,
logLevel: 'debug'
});
module.exports = function() {
return {
server: {
middleware: [jsonPlaceholderProxy],
baseDir: baseDir
}
};
};
答案 1 :(得分:0)
您应该在服务器端添加允许标头和方法的其他信息。例如:
res.setHeader("Access-Control-Allow-Headers", "Origin, X-Requested-With, Content-Type, Accept");
res.setHeader("Access-Control-Allow-Methods", "GET, POST, DELETE, PUT");
或
res.header("Access-Control-Allow-Headers", "Origin, X-Requested-With, Content-Type, Accept");
res.header("Access-Control-Allow-Methods", "GET, POST, DELETE, PUT");
这将告诉服务器接受客户端发送的标头(例如Origin)以及您计划支持的HTTP方法(例如GET)。
有关CORS的更多信息,请参阅https://developer.mozilla.org/en-US/docs/Web/HTTP/Access_control_CORS